Vulnerability Database

289,784

Total vulnerabilities in the database

CVE-2021-1431

A vulnerability in the vDaemon process of Cisco IOS XE SD-WAN Software could allow an unauthenticated, remote attacker to cause a device to reload, resulting a denial of service (DoS) condition. This vulnerability is due to insufficient handling of malformed packets. An attacker could exploit this vulnerability by sending crafted traffic to an affected device. A successful exploit could allow the attacker to cause the device to reload, resulting in a DoS condition.

  • Published: Mar 24, 2021
  • Updated: Apr 14, 2023
  • CVE: CVE-2021-1431
  • Severity: High
  • Exploit:

CVSS v3:

  • Severity: High
  • Score: 7.5
  • AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

CVSS v2:

  • Severity: High
  • Score: 7.8
  • AV:N/AC:L/Au:N/C:N/I:N/A:C

CWEs:

Software From Fixed in
cisco / ios_xe 16.12.1 16.12.1.x
cisco / ios_xe 16.11.1 16.11.1.x
cisco / ios_xe 16.11.1a 16.11.1a.x
cisco / ios_xe 16.12.1c 16.12.1c.x
cisco / ios_xe 16.12.1t 16.12.1t.x
cisco / ios_xe 16.11.2 16.11.2.x
cisco / ios_xe 16.12.1s 16.12.1s.x
cisco / ios_xe 16.12.1a 16.12.1a.x
cisco / ios_xe 16.12.1x 16.12.1x.x
cisco / ios_xe 16.11.1c 16.11.1c.x
cisco / ios_xe 16.11.1b 16.11.1b.x
cisco / ios_xe 16.11.1s 16.11.1s.x
cisco / ios_xe 16.12.1w 16.12.1w.x
cisco / ios_xe 16.12.1y 16.12.1y.x
cisco / ios_xe 16.12.2 16.12.2.x
cisco / ios_xe 16.12.2a 16.12.2a.x
cisco / ios_xe 16.12.4 16.12.4.x
cisco / ios_xe 16.12.3 16.12.3.x
cisco / ios_xe 17.2.1 17.2.1.x
cisco / ios_xe 16.12.2t 16.12.2t.x
cisco / ios_xe 16.12.2s 16.12.2s.x
cisco / ios_xe 16.12.3a 16.12.3a.x
cisco / ios_xe 17.2.1a 17.2.1a.x
cisco / ios_xe 3.15.2xbs 3.15.2xbs.x
cisco / ios_xe 17.2.1v 17.2.1v.x
cisco / ios_xe 16.12.1z 16.12.1z.x
cisco / ios_xe 16.12.3s 16.12.3s.x
cisco / ios_xe 3.15.1xbs 3.15.1xbs.x
cisco / ios_xe 17.2.1r 17.2.1r.x
cisco / ios_xe 16.12.4a 16.12.4a.x
cisco / ios_xe 17.2.2 17.2.2.x
cisco / ios_xe 17.2.3 17.2.3.x